1. Home
  2. Security Hardening
  3. DISA STIG Office System 2010 V1R12
  4. DTOO311 – Office System – Key Usage Filtering must be allowed.

DTOO311 – Office System – Key Usage Filtering must be allowed.

Details

This policy setting allows you to filter a list of digital certificates for signing Excel, PowerPoint, and Word documents, based on the Key Usage field. The Key Usage field in a certificate is used to represent a series of basic constraints about the broad types of operations that can be performed with the certificate. Key usage filtering allows you to filter the list of installed certificates that can be used for signing documents. The filtered list will appear when users attempt to select a certificate for digitally signing a document.

Solution

Set the policy value for User Configuration -> Administrative Templates -> Microsoft Office 2010 -> Signing ‘Key Usage Filtering’ to ‘Enabled’.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles